Yes, it's THAT book!

Drop your email here to stay informed of the status of my "tell most" book about the National Security Agency:

--OR--

Read a little about the book here:

Employees are allies, not the adversary

--OR--

Check out the Kickstarter here (click)
How can I help you?
Contact Jeremy
Recommendations

Here's something that


I, Jeremy Duffy, actually recommend and think is worth checking out.
No web-bugs, no bs, just a legit recommmendation that I have personally evaluated before allowing it to be listed here:

Think something's here that shouldn't be? contact me!

IP and HTML Headers Check

Did you know that whenever you visit a site, your browser helpfully supplies a wealth of information about you to that site? It does this for a lot of reasons that are very legitimate, but the same information can leak data about you that you don't want others to have. Most importantly, this website and any other that you visit can store the information permenantly and use it however we see fit (not that I do, but I could).

Here's some of what your browser told me about you:

Browser/Operating System

All this does is tell me what kind of browser and operating system you're using. On the legitimate end, I can make modifications on my page to handle various peculiarities of different browsers so the page will work the same for everyone. On the other hand, I can use that information to launch an automated attack against you which will be really easy since I know exactly what browser, operating system, and the versions of each.

Blocking OS Info

In theory, this should be pretty easy to block without affecting your Internet browsing. I thought there'd be a simple plugin or browser option for it, but I haven't found it yet. Let me know if you know of something.

Your IP Address

If your IP address isn't being blocked or routed somehow, this tells me approximately where you are in the world and what Internet service you use. This will also usually tell me exactly what computer is connected which, in turn, could tell me which person.

Since businesses can't afford to keep changing IP addresses all the time, I can also be fairly certain that you belong to X or Y company or government agency. So, if you're someone in law enforcement (for example), maybe I hide my hacks and bad information when I see you coming. If you're from a competitor company, I show prices much lower than normal to hopefully mess up your pricing research. There's a lot I can do if I know who's connecting to me.

Blocking IP

The only way to block your IP address is to use a proxy of some kind. This is where you connect with a computer and that computer gets webpages for you and returns them to you. The proxy computer acts as a shield that keeps the Internet from knowing who it's actually dealing with.

Where You Came From

Called the "referrer", this value tells me the site you just came from if you used a link to get here. The legitimate function is that I can tell who's linking to me and do traffic analysis. However, this also gives me useful information that you might not want to give me.

For example, if you came from a search engine, you'll probably see your search terms listed (which means I can see it too). That's not likely a big deal in most cases, but in some cases it's worse. If your company has a web page called:

http://www.company.com/competitors/hostile_takeover_targets.html

Now say on this page, you list a few links to the homepages of companies you're about to take down. If anyone in your organization clicks on one of those links, the target company will see that webpage as the referrer. This gives advance warning which is probably what you don't want.

Blocking Referrer

This is one of the easier ones as you only need to type web addresses manually or cut and paste. Referrer is only sent if you click on a link. Therefore, if you right-click, choose "Copy Shortcut" and paste it into the address bar instead (or anything else that will get you there without actually clicking on it), you will eliminate the referrer value.

Internet Tools

IP Checker - Shows your IP address and other information that your browser tells us about you.
10 Minute Mail - A web-based temporary e-mail account for recieving validation e-mails.
BugMeNot - Don't even bother using the fake mail to get an account if you can bypass the login entirely.
The Internet Archive - A project that attempts to record every version of every website ever.

Share This

Have a Comment or Question?

No Comments Yet to “IP and HTML Headers Check”

» Comments RSS Feed
Jeff Bloomfield says:

Jeremy,

Do you know of any iphone or ‘droid browsers that allow you to switch the user-agent-string? I sometimes use yelp and I refuse to use their app because I don’t know what they do with the info. The problem is that yelp
now allows very limited browsing from a cell phone browser and they make what browsing they allow very inconvenient.

There’s an extension for firefox.

    Jeff Bloomfield says:

    Guess I’ll have to upgrade to an iphone 6 (still running a 4), but not ’till I drop it many more times. I do have the Firefox user-agent
    extension running on my mac laptop.

Loading...

If you want to learn more about my professional background, click here to learn more.

Check out one of my guides/tutorials:

data defense Tutorial
|INDEX|next: Protecting Social Security Numbers
It's impossible to fully prevent credit card fraud, but there are several things you can do to help.
Social security numbers have become the gateway to all kinds of identity abuses so the less people you give it to, the better.
Your data is as valuable as money so protect it like money!
What do you do once your data is already out there? This.

... or check out any of my other guides and tutorials by clicking here!

IP and HTML Headers Check

Use this page to show and learn how to limit the various data about you that your browser supplies to every page you visit.

[Click for full description]

10 Minute Mail - Self Destructing E-mail Service

One way of protecting your e-mail is to not give it out. That can be hard when it seems everyone asks for you to validate e-mails sent to your account. That's where a self destructing e-mail account comes in handy!

[Click for full description]

Bug Me Not - Login Avoidance Tool

For sites the require registration, but don't really need it, save time and see if someone has left a common-use login and password at BugMeNot

[Click for full description]

The Internet Archive

If you want to see what the Internet used to be, use the archive.

[Click for full description]

Protecting Credit Cards

Credit card fraud isn't ID Theft, but is closely relatedare often used fraudulently so do what you can to prevent it.

[Click for full description]

Protecting Social Security Numbers

Social security numbers have become the gateway to all kinds of identity abuses so the less people you give it to, the better.

[Click for full description]

Being a Data Scrooge

Learn to protect your personal information the way Scrooge did his money.

[Click for full description]

Reputation Management

Just because there are things out there about you that are out of your control and are unflattering or worse, doesn't mean you're powerless.

[Click for full description]